Static | ZeroBOX

PE Compile Time

2020-03-12 03:34:54

PDB Path

C:\cuvunipejeli zetisucaw\jonu47.pdb

PE Imphash

66e96811d44c9a81b9322fd543b9ebd6

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0001a150 0x0001a200 7.03954581202
.data 0x0001c000 0x0283a044 0x00005400 0.961645133127
.rsrc 0x02857000 0x0000e770 0x0000e800 6.45051394282

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x02864898 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x02864898 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x02864898 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02863390 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x02865578 0x000001f8 LANG_SERBIAN SUBLANG_DEFAULT data
RT_STRING 0x02865578 0x000001f8 LANG_SERBIAN SUBLANG_DEFAULT data
RT_ACCELERATOR 0x02863898 0x00000010 LANG_SERBIAN SUBLANG_DEFAULT data
RT_ACCELERATOR 0x02863898 0x00000010 LANG_SERBIAN SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x02865140 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x02865140 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x028637f8 0x00000068 LANG_SERBIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x028637f8 0x00000068 LANG_SERBIAN SUBLANG_DEFAULT data
RT_VERSION 0x02865168 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x40100c CreateTapePartition
0x401014 CreateActCtxA
0x401018 GetCPInfoExW
0x40101c WriteConsoleInputW
0x401020 ReadConsoleInputA
0x401024 InitializeSListHead
0x40102c WriteConsoleA
0x401030 GetConsoleCP
0x401034 VerifyVersionInfoW
0x401038 CreateFileW
0x401044 EnumDateFormatsExA
0x401048 DeleteTimerQueue
0x40104c LoadLibraryA
0x401054 SetConsoleCP
0x401058 FindFirstVolumeW
0x40105c ReadFile
0x401060 BuildCommDCBW
0x401064 VerLanguageNameW
0x401068 SetFileApisToANSI
0x40106c WriteProcessMemory
0x401070 SetEvent
0x401074 GetExitCodeThread
0x401078 EndUpdateResourceW
0x40107c GetCPInfoExA
0x401080 SetLastError
0x401084 UpdateResourceA
0x401088 SetConsoleTitleW
0x40108c FindClose
0x401090 LoadLibraryExA
0x401094 CopyFileW
0x401098 ReadConsoleA
0x40109c ZombifyActCtx
0x4010a0 CreateActCtxW
0x4010a4 HeapUnlock
0x4010ac ReadConsoleOutputW
0x4010b0 GlobalFindAtomW
0x4010b8 GetUserDefaultLCID
0x4010c0 GetGeoInfoA
0x4010c4 GetCurrentProcess
0x4010c8 VirtualProtect
0x4010cc GetProcAddress
0x4010d0 GetModuleHandleW
0x4010d4 CreateThread
0x4010d8 GetVersionExA
0x4010e0 WaitForSingleObject
0x4010e8 VerifyVersionInfoA
0x4010ec lstrlenA
0x4010f8 GetComputerNameA
0x4010fc CommConfigDialogA
0x401100 GetConsoleAliasA
0x401104 GetSystemTime
0x401108 GetDiskFreeSpaceA
0x40110c CreateFileA
0x401118 Sleep
0x401128 RtlUnwind
0x40112c RaiseException
0x401130 GetLastError
0x401134 HeapFree
0x401138 TerminateProcess
0x401144 IsDebuggerPresent
0x401148 HeapReAlloc
0x40114c HeapAlloc
0x401150 GetStartupInfoW
0x401154 LCMapStringA
0x401158 WideCharToMultiByte
0x40115c MultiByteToWideChar
0x401160 LCMapStringW
0x401164 GetCPInfo
0x401168 TlsGetValue
0x40116c TlsAlloc
0x401170 TlsSetValue
0x401174 TlsFree
0x401178 GetCurrentThreadId
0x40117c HeapCreate
0x401180 VirtualFree
0x401184 VirtualAlloc
0x401188 SetHandleCount
0x40118c GetStdHandle
0x401190 GetFileType
0x401194 GetStartupInfoA
0x401198 SetFilePointer
0x40119c ExitProcess
0x4011a0 WriteFile
0x4011a4 GetModuleFileNameA
0x4011a8 GetModuleFileNameW
0x4011b4 GetCommandLineW
0x4011bc GetTickCount
0x4011c0 GetCurrentProcessId
0x4011c8 GetACP
0x4011cc GetOEMCP
0x4011d0 IsValidCodePage
0x4011d4 GetLocaleInfoA
0x4011d8 GetStringTypeA
0x4011dc GetStringTypeW
0x4011e0 HeapSize
0x4011e4 EnumSystemLocalesA
0x4011e8 IsValidLocale
0x4011f0 SetStdHandle
0x4011f4 GetConsoleMode
0x4011f8 FlushFileBuffers
0x4011fc GetLocaleInfoW
0x401200 GetConsoleOutputCP
0x401204 WriteConsoleW
0x401208 CloseHandle
Library USER32.dll:
0x401210 GetAltTabInfoW

Exports

Ordinal Address Name
1 0x409796 @GetOtherVice@12
2 0x40a56f @SetFirstEverVice@4
!This program cannot be run in DOS mode.
`.data
bad allocation
jeruyosejosuvilevewoxati
gojolazodicufevaxasirenam
xopixobogicefukajuzu
lujucirekopusopurogara
LocalAlloc
Copuwaku majemuh wetuziretuje webuzulip vadunusuz
Xuraduyum
dojatatenek
fideholujoridegibayurexodowevex
bad cast
ios_base::eofbit set
ios_base::failbit set
ios_base::badbit set
bad allocation
string too long
invalid string position
Unknown exception
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
bad exception
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
CONOUT$
C:\cuvunipejeli zetisucaw\jonu47.pdb
4I3oKa`
K3MXPt&
?w@'c1
sH/v^e
XE>Et$
z3K3Yg
^tJxj^T
,hT:|^3
'Q@+Wm
\$>PnX
n"_`kE
E*dp!U
9^"bm\
yxA0Mr[!
]%)|E(
<ZwrY|f_
x0V[&3m
wS$:OZ15]U~
Xq(tV[#
O?mURAK
r?DX&Kmy
i~0`8v
KW< J0C,
0Y{!i>
C=ge^p
8YroYk
?F*wUv@u
v+>@:0
C15}[s
c*#$Ks`
p~wz=E
9e"4Ng
/S:v)8
oG(`Qj
Li;#=&?T
3geh#Y>
"yV{-D
qPd? *Lj
p2+9*j
&i#5+ 'd
Z2+=!1
!Y*o3X
Tbt{x.
_%l#X]
xpODmk(
*q59{%
VVVVVVh(
ED2$|'
FYY;t$
FYY;t$
F09^(u
QQSVW3
PVVVVV
0WWWWW
0WWWWW
QQSVWd
t"SS9]
0SSSSS
HtHu4j
s[S;7|G;w
tR99u2
F\=X'@
j@j ^V
u&h '@
>=Yt1j
QQSVWh
0A@@Ju
t+WWVPV
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
0SSSSS
PPPPPPPP
0SSSSS
PPPPPPPP
URPQQh
;t$,v-
UQPXY]Y[
0WWWWW
AAFFf;
u,VVWV
t VV9u
^SSSSS
^SSSSS
LeaveCriticalSection
GetConsoleAliasesLengthA
InterlockedExchangeAdd
CreateTapePartition
GetSystemDefaultLCID
CreateActCtxA
GetCPInfoExW
WriteConsoleInputW
ReadConsoleInputA
InitializeSListHead
SetConsoleDisplayMode
WriteConsoleA
GetConsoleCP
VerifyVersionInfoW
CreateFileW
WritePrivateProfileSectionW
GetPrivateProfileSectionA
EnumDateFormatsExA
DeleteTimerQueue
LoadLibraryA
FlushInstructionCache
SetConsoleCP
FindFirstVolumeW
ReadFile
BuildCommDCBW
VerLanguageNameW
SetFileApisToANSI
WriteProcessMemory
SetEvent
GetExitCodeThread
EndUpdateResourceW
GetCPInfoExA
SetLastError
UpdateResourceA
SetConsoleTitleW
FindClose
LoadLibraryExA
CopyFileW
ReadConsoleA
ZombifyActCtx
CreateActCtxW
HeapUnlock
DnsHostnameToComputerNameW
ReadConsoleOutputW
GlobalFindAtomW
GetSystemWindowsDirectoryW
GetUserDefaultLCID
BuildCommDCBAndTimeoutsA
GetGeoInfoA
GetCurrentProcess
VirtualProtect
GetProcAddress
GetModuleHandleW
CreateThread
GetVersionExA
GetProcessAffinityMask
WaitForSingleObject
SetConsoleCursorPosition
VerifyVersionInfoA
lstrlenA
WriteConsoleOutputCharacterA
GetFileAttributesExA
GetComputerNameA
CommConfigDialogA
GetConsoleAliasA
GetSystemTime
GetDiskFreeSpaceA
KERNEL32.dll
GetAltTabInfoW
RealChildWindowFromPoint
USER32.dll
InterlockedIncrement
InterlockedDecrement
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
RtlUnwind
RaiseException
GetLastError
HeapFree
TerminateProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
HeapReAlloc
HeapAlloc
GetStartupInfoW
LCMapStringA
WideCharToMultiByte
MultiByteToWideChar
LCMapStringW
GetCPInfo
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
GetCurrentThreadId
HeapCreate
VirtualFree
VirtualAlloc
SetHandleCount
GetStdHandle
GetFileType
GetStartupInfoA
SetFilePointer
ExitProcess
WriteFile
GetModuleFileNameA
GetModuleFileNameW
FreeEnvironmentStringsW
GetEnvironmentStringsW
GetCommandLineW
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
GetACP
GetOEMCP
IsValidCodePage
GetLocaleInfoA
GetStringTypeA
GetStringTypeW
HeapSize
EnumSystemLocalesA
IsValidLocale
InitializeCriticalSectionAndSpinCount
SetStdHandle
GetConsoleMode
FlushFileBuffers
GetLocaleInfoW
GetConsoleOutputCP
WriteConsoleW
CloseHandle
CreateFileA
fuyexanovo.exe
@GetOtherVice@12
@SetFirstEverVice@4
.?AVbad_alloc@std@@
.?AVexception@std@@
.?AVfacet@locale@std@@
.?AUctype_base@std@@
.?AVios_base@std@@
.?AV?$_Iosb@H@std@@
.?AV?$basic_ostream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_ios@DU?$char_traits@D@std@@@std@@
.?AV?$basic_istream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_iostream@DU?$char_traits@D@std@@@std@@
.?AV?$ctype@D@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@std@@@std@@
.?AV?$basic_stringbuf@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AV?$basic_stringstream@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AVruntime_error@std@@
.?AVfailure@ios_base@std@@
.?AVbad_cast@std@@
.?AV_Locimp@locale@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
IWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
:8WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
0\n\<;C
~WWWWWWWWWWWWWWWWWWWWWWWWWWWWW
BVWWWWWWWWWWWWWWWWWWWWWWWWWWWW
;0\m\vu
WWWWWWWWWWWWWWWWWWWWWWWWWWWW
9WWWWWWWWWWWWWWWWWWWWWWWWWWWWI
MOWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
9WWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWW`
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW`
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWO[
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWW:_
WWWWWWWWWWWIi
WWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWW
GEdWWWWWWWWWWWWWWWWWWWWWWWWWWW~
WWWWWWWWWWWWWWWWWWWWWWWWWWW:
WWWWWWWWWWWWWWWWWWWWWWWWWWWW:
dWWWWWWWWWWWWWWWWWWWWWWWWWWWW:
WWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWW2
VhWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW2e
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
}WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
-~WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
-:WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
ttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttt
|tttttttttttttttttttttttttg
`ttttttttttttttttttttttt
tttttttttttttttttttt
ttttttttttttttttttt
tttttttttttttttttt
0ttttttttttttttttttJ
ttttttttttttttttttt
ttttttttttttttttttt
ttttttttttttttttttttt
ttttttttttttttttttttttttttttO
tttttttttttttttttttttttttttt
tttttttttttttttttttttttttttt
tttttttttDttttttttttttttttttR
ttttttttV
tttttttttttttttttt
4Qtttttttd
3tttttttttttttttttt@
8<+ttttt
tttttttttttttttttt
5tttttttttttttttttt
tttttttttttttttttt
ttttttttttttttttttt
ttttttttttttttttttt
tttttttttttttttttttt
%{'ttttttttttttttttttttt=
ttttttttttttttttttttttttt
tttttttttttttttttttttttttt
ttttttttttttttttttttttttttt
H$ttttttttttttttttttttttttttttPttttttttttttttttttttttttttttttttttttttttttttttttttt
,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,3:E
,,,,,,,,,,,
E,,,,,,,,,,
,,,,,,,,,
,,,,,,,,,,
/+,,,,,,,,,,,,,
@;,,,,,,,,,,,,,
r,,,,,,,,,,,,,
,,,,,,,,,
`,,,,,,,,,
,,,,,,,,,a
+5,,,,,,,,,D
9,,,,,,,,,,,,2$^,,,,,,,,,,,,,,K,,,,,,,,
81~r)'
33}0('
73y}27
7/{f) y
4OYkI/,
J\\}}n}
PPi0(7
D@j{fr
UU{=!)
YQso><~
$Xjx<31{
FGJm|s
3EC{{*3
fIKE"E
uYYk1U

b
F[%5

1[c
|[%qW

o
5$x\CqI*
o[


:c
[Fc^


qU]Uer
C5I]
^
p

^
x
%

%
%
f<Cf'0K~F
-Pb<"r
3\tT!}
Rsz"/FnM
S&`~~"]
*7d<#t
Bm}9#y
E:bzp-\
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

buteyugimuzadagesurux
tixetusepobirabuxawevomepenetis
beyixepematileyacuhecajo
Nepebuc xupademujoxu
yukeduzezaribanipeyobizitewehujipibuwojatajuhajesukirumimorohodot
podofomiwuxofaluzetigijenowucos
mapadavoxisovuyavigofipuhi
kernel32.dll
((((( H
h(((( H
H
KERNEL32.DLL
mscoree.dll
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
081564b6
InternalName
kogzmuahake.exi
Copyright
Copyrighz (C) 2020, vodkaguts
ProductVersion
91.78.38.10
VarFileInfo
Translation
Leyifuyitefam jagucubolim9Cixuco lupazekezab nul benine nuwecovekizalo pagojaxifoja6Jemubaletehutuf havudu ziru jinevuxasigo nimita nizeyoJLuf zerinewuyijoyug fedib zuhuyizeguwej yuzemoju ciloyejoze gaguvuwujafomo
Punevewexujuf"Tijavefafoso hepix tulokusibibagob
Tilonodagokolul roduvacexir
"Vacu rexuwaxakipemi kafu sijutucezYSeguyoloy dalotuhalibi xum yijeya monom sigatuse cucuxazayanu hice jeniserahaw nojujaxepu7Dodof huni xadazum sowuhuranoyuwa fesosojalugimu pujopo:Feyar vutukunavayiliy jomux funacuvuxaxoci kazidogezenames
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Clean
Elastic malicious (high confidence)
DrWeb Clean
MicroWorld-eScan Gen:Heur.Mint.Titirez.lm0@bHyhrN
FireEye Generic.mg.546ec68100c98cc6
CAT-QuickHeal Clean
McAfee Artemis!546EC68100C9
Cylance Clean
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005807181 )
BitDefender Gen:Heur.Mint.Titirez.lm0@bHyhrN
K7GW Trojan ( 005807181 )
CrowdStrike win/malicious_confidence_80% (D)
Arcabit Clean
BitDefenderTheta Clean
Cyren W32/Kryptik.EUP.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Kryptik.HLYN
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002C0RH621
Paloalto generic.ml
ClamAV Win.Dropper.Babar-9883606-0
Kaspersky HEUR:Trojan.Win32.Bsymem.gen
Alibaba Trojan:Win32/Kryptik.27a34988
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.D82C (CLASSIC)
Ad-Aware Gen:Heur.Mint.Titirez.lm0@bHyhrN
Emsisoft Trojan.Agent (A)
Comodo Clean
F-Secure Clean
Baidu Clean
Zillya Clean
TrendMicro TROJ_GEN.R002C0RH621
McAfee-GW-Edition BehavesLike.Win32.Generic.ch
CMC Clean
Sophos ML/PE-A + Troj/Krypt-W
Ikarus Trojan-Downloader.Win32.Glupteba
Jiangmin Exploit.ShellCode.dxl
MaxSecure Trojan.Malware.300983.susgen
Avira HEUR/AGEN.1144344
MAX malware (ai score=81)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Ransom.Win32.STOP.ko!se3230
Microsoft Trojan:Win32/Sabsik.FL.A!ml
SUPERAntiSpyware Clean
ZoneAlarm Clean
GData Win32.Trojan.PSE.2DIUAK
Cynet Malicious (score: 100)
AhnLab-V3 Infostealer/Win.SmokeLoader.R435601
Acronis Clean
VBA32 BScope.Trojan.Bingoml
ALYac Clean
TACHYON Clean
Malwarebytes Trojan.MalPack.GS
Panda Trj/Genetic.gen
APEX Malicious
Tencent Clean
Yandex Clean
SentinelOne Static AI - Malicious PE
eGambit Clean
Fortinet W32/GenKryptik.ERHN!tr
Webroot Clean
AVG Win32:PWSX-gen [Trj]
Avast Win32:PWSX-gen [Trj]
Qihoo-360 Win32/Trojan.Bsymem.HwoCFBsB
No IRMA results available.